← Back to CVE List
Vulnerability Intelligence Report

CVE-2017-18755

Certain NETGEAR devices are affected by CSRF. This affects R6300v2 before 1.0.4.8, R6400v2 before 1.0.2.32, R6700 before 1.0.1.22, R6900 before 1.0.1.22, R7000P before 1.0.0.86, R6900P before 1.0.0.56, R7300 before 1.0.0.54, R8300 before 1.0.2.106, R8500 before 1.0.2.106, DGN2200v4 before 1.0.0.86, DGND2200Bv4 before 1.0.0.86, R6050 before 1.0.0.86, JR6150 before 1.0.1.10, R6220 before 1.1.0.50, and WNDR3700v5 before V1.1.0.48.

No Active Exploit Signals
CVSS Base Score
8.8
HIGH
Exploitability:2.9
Impact Score:5.9
EPSS Probability:0.46%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Affected Products & Versions

Vendor Product Affected Versions
netgear r6300_firmware all
netgear r6300 v2
netgear r6400_firmware all
netgear r6400 v2
netgear r6700_firmware all
netgear r6700 all
netgear r6900_firmware all
netgear r6900 all
netgear r7000p_firmware all
netgear r7000p all
netgear r6900p_firmware all
netgear r6900p all
netgear r7300_firmware all
netgear r7300 all
netgear r8300_firmware all
netgear r8300 all
netgear r8500_firmware all
netgear r8500 all
netgear dgn2200_firmware all
netgear dgn2200 v4
netgear dgnd2200b_firmware all
netgear dgnd2200b v4
netgear r6050_firmware all
netgear r6050 all
netgear jr6150_firmware all
netgear jr6150 all
netgear r6220_firmware all
netgear r6220 all
netgear wndr3700_firmware all
netgear wndr3700 v5

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.460%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityMITRE Corporation · N/A · USA
Reserved2020-04-20T00:00:00
Published2020-04-22T16:11:40
Last Updated2024-08-05T21:37:43

LINK COPIED TO CLIPBOARD